python 3.13.13 [CVE-2026-7210] #74
Labels
No labels
Compat/Breaking
Kind/Bug
Kind/Discussion
Kind/Documentation
Kind/Enhancement
Kind/Feature
Kind/Security
Kind/Testing
Priority
Critical
Priority
High
Priority
Low
Priority
Medium
Reviewed
Confirmed
Reviewed
Duplicate
Reviewed
Invalid
Reviewed
Won't Fix
Status
Abandoned
Status
Blocked
Status
Help Wanted
Status
Need More Info
Prio - Hoog
Prio - Laag
Prio - Middel
styling
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
MinBZK/DAWO-NixOS#74
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Installed: 3.13.13
CVE-2026-7210 is a security flaw in Python (xml.parsers.expat and xml.etree.ElementTree) caused by low random data (entropy) in hash protection. A bad XML file can cause high CPU use and a crash (DoS). Fix it by updating libexpat to version 2.8.0 or later and applying the official Python patch.
Update your system's libexpat library to version 2.8.0 or higher.